iexplore adware problem - hijackthis log included

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by jjca, Dec 21, 2006.

  1. jjca

    jjca Private E-2

    ok, I was an idiot. I downloaded a file off of bittorrent and the rar was passworded, and gave a site to download a file. It said that the program (bitgrabber) when installed would have the password in the about. Of course, it had adware, and I was a major *** for installing it. Anyways, now there are constantly two iexplore's running in my processes and if I stop the process, it just comes right back. I'm pretty sure this has something to do with the pop up ads i'm getting now. Here is my hijackthis log:


    Edit: removed inline log


    Any help would be greatly appreciated.
     
    Last edited by a moderator: Dec 21, 2006
  2. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    HI

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    Downloading, Installing, and Running HijackThis

    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.

    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
      • HijackThis
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     
  3. jjca

    jjca Private E-2

    attachment added.
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please follow the directions that Halo gave to you. HijackThis is the very last step not the first. In addition when you get to the point where HJT is supposed to be run, it must be installed and renamed properly as per the directions.

    Why are you running your PC with no antivirus, no antispyware, and no firewall? This is a dangerous thing to do.
     
    Last edited: Dec 21, 2006
  5. jjca

    jjca Private E-2

    I understand those steps are there for a reason, but is there no way at all that you can just look at the log and tell me what that iexplore problem is without me having to jump through all the hoops? I did everything with the safe boot, ran CCcleaner, ran spybot, ran counterspy, and the issue persists. The iexplore program must be the issue, i'm sure of that much, but I don't know how to get rid of it.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    If you ran eveything then attach the logs as requested. Also if you ran eveything why is HijackThis installed incorrectly.

    Most people are under the very mistaken misconception that HijackThis is a scanning/removal tool. It is not! HijackThis is simply a tool that is used to identify browser hijackers and in some cases it will show entries for some malware that is for instance running at startup. All it does is list a few of the thousands of registry keys that exist, and it makes no inferences to whether anything being shown is good or bad. That decision is left a person with significant Windows and malware cleaning experience. HijackThis does not come close to showing all malware that could be hiding on a PC. Anyone who has an infected computer and is relying on HijackThis without the benefit of running other scans such as Spybot, Windows Defender, BitDefender & Panda, CCleaner, etc. are more than likely still infected. In most cases, where there is one virus/trojan there are more. The goal of this forum is to remove all malware, and this cannot be done properly by just seeing a HijackThis log.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds